Wormable Windows Bug Opens Door to DoS, RCE
#1
Information 
Quote:Microsoft’s May Patch Tuesday release addressed a modest 55 cybersecurity vulnerabilities, including just four critical bugs. It’s the smallest monthly update from the computing giant since 2020, but it does contain a patch for a concerning wormable vulnerability found in the Windows OS.

The good news is that none of the vulnerabilities are being actively exploited in the wild, according to Microsoft, though three are listed as publicly known.

The fixes address security flaws across Microsoft Windows, .NET Core and Visual Studio, Internet Explorer (IE), Microsoft Office, SharePoint Server, Open-Source Software, Hyper-V, Skype for Business and Microsoft Lync, and Exchange Server. Besides the four critical bugs, 50 are rated “important” and one is moderate in severity.

Critical Microsoft Security Patches for May 2021

The critical bugs in this month’s Patch Tuesday release are:
  • CVE-2021-31166: A wormable HTTP protocol-stack issue in Windows 10 and some versions of Windows Server allowing remote code-execution (RCE)
  • CVE-2021-26419: A scripting-engine memory corruption vulnerability in Internet Explorer 11 and 9 allowing RCE
  • CVE-2021-31194: An RCE bug in the Microsoft Windows Object Linking and Embedding (OLE) Automation
  • CVE-2021-28476: An RCE vulnerability in Microsoft Windows Hyper-V

Read more: Wormable Windows Bug Opens Door to DoS, RCE | Threatpost
[-] The following 1 user says Thank You to silversurfer for this post:
  • harlan4096
Reply


Messages In This Thread
Wormable Windows Bug Opens Door to DoS, RCE - by silversurfer - 12 May 21, 11:48

Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
AdwCleaner 8.8.1
AdwCleaner 8.8.1 ...harlan4096 — 08:14
Brave 1.90.122 (Chromium 148.0.7778.167)
Release v1.90.122 ...harlan4096 — 08:12
Privazer 4.0.122 (13 May 2026)
Privazer v4.0.122 ...harlan4096 — 08:11
Google Announces Major Android Auto Upda...
Google has announc...harlan4096 — 08:10
QOwnNotes
26.5.10 Added a f...Kool — 06:46

[-]
Birthdays
Today's Birthdays
avatar (45)tiojusop
avatar (42)Damiennug
avatar (40)acoraxe
Upcoming Birthdays
avatar (28)akiratoriyama
avatar (48)Jerrycix
avatar (40)awedoli
avatar (82)WinRARHowTo
avatar (39)axuben
avatar (40)ihijudu
avatar (49)contjrat
avatar (44)knigiJow
avatar (46)1stOnecal
avatar (50)Mirzojap
avatar (36)idilysaju
avatar (40)GregoryRog
avatar (45)mediumog
avatar (40)odukoromu
avatar (46)Joanna4589

[-]
Online Staff
There are no staff members currently online.

>